2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-28879 | CRITICAL | 9.8 | 2.4% | Apr 11, 2021 | In the standard library in Rust before 1.52.0, the Zip implementation can report an incorrect size due to an integer ove... |
| CVE-2021-28878 | HIGH | 7.5 | 2.0% | Apr 11, 2021 | In the standard library in Rust before 1.52.0, the Zip implementation calls __iterator_get_unchecked() more than once fo... |
| CVE-2021-28877 | HIGH | 7.5 | 1.4% | Apr 11, 2021 | In the standard library in Rust before 1.51.0, the Zip implementation calls __iterator_get_unchecked() for the same inde... |
| CVE-2021-28876 | MEDIUM | 5.3 | 1.6% | Apr 11, 2021 | In the standard library in Rust before 1.52.0, the Zip implementation has a panic safety issue. It calls __iterator_get_... |
| CVE-2021-28875 | HIGH | 7.5 | 2.1% | Apr 11, 2021 | In the standard library in Rust before 1.50.0, read_to_end() does not validate the return value from Read in an unsafe c... |
| CVE-2021-30485 | MEDIUM | 6.5 | 1.2% | Apr 11, 2021 | An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_internal_dtd(), while parsing a crafted XML fil... |
| CVE-2021-30481 | CRITICAL | 9 | 3.5% | Apr 10, 2021 | Valve Steam before 2021-04-17, when a Source engine game is installed, allows remote authenticated users to execute arbi... |
| CVE-2021-20020 | CRITICAL | 9.8 | 3.7% | Apr 10, 2021 | A command execution vulnerability in SonicWall GMS 9.3 allows a remote unauthenticated attacker to locally escalate priv... |
| CVE-2021-30480 | HIGH | 8.8 | 5.8% | Apr 9, 2021 | Zoom Chat through 2021-04-09 on Windows and macOS allows certain remote authenticated attackers to execute arbitrary cod... |
| CVE-2021-21199 | HIGH | 8.8 | 1.1% | Apr 9, 2021 | Use after free in Aura in Google Chrome on Linux prior to 89.0.4389.114 allowed a remote attacker who had compromised th... |
| CVE-2021-21198 | HIGH | 7.4 | 1.8% | Apr 9, 2021 | Out of bounds read in IPC in Google Chrome prior to 89.0.4389.114 allowed a remote attacker who had compromised the rend... |
| CVE-2021-21197 | HIGH | 8.8 | 1.4% | Apr 9, 2021 | Heap buffer overflow in TabStrip in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploi... |
| CVE-2021-21196 | HIGH | 8.8 | 1.3% | Apr 9, 2021 | Heap buffer overflow in TabStrip in Google Chrome on Windows prior to 89.0.4389.114 allowed a remote attacker to potenti... |
| CVE-2021-21195 | HIGH | 8.8 | 1.5% | Apr 9, 2021 | Use after free in V8 in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2021-21194 | HIGH | 8.8 | 1.2% | Apr 9, 2021 | Use after free in screen sharing in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploi... |
| CVE-2021-25381 | HIGH | 7.8 | 0.2% | Apr 9, 2021 | Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android ... |
| CVE-2021-25380 | HIGH | 7.3 | 0.6% | Apr 9, 2021 | Improper handling of exceptional conditions in Bixby prior to version 3.0.53.02 allows attacker to execute the actions r... |
| CVE-2021-25379 | LOW | 3.3 | 0.2% | Apr 9, 2021 | Intent redirection vulnerability in Gallery prior to version 5.4.16.1 allows attacker to execute privileged action. |
| CVE-2021-25378 | MEDIUM | 5.3 | 1.0% | Apr 9, 2021 | Improper access control of certain port in SmartThings prior to version 1.7.63.6 allows remote temporary denial of servi... |
| CVE-2021-25377 | HIGH | 7.8 | 0.2% | Apr 9, 2021 | Intent redirection in Samsung Experience Service versions 10.8.0.4 in Android P(9.0) below, and 12.2.0.5 in Android Q(10... |
| CVE-2021-25376 | MEDIUM | 5.3 | 0.8% | Apr 9, 2021 | An improper synchronization logic in Samsung Email prior to version 6.1.41.0 can leak messages in certain mailbox in pla... |
| CVE-2021-25375 | MEDIUM | 6.5 | 1.2% | Apr 9, 2021 | Using predictable index for attachments in Samsung Email prior to version 6.1.41.0 allows remote attackers to get attach... |
| CVE-2021-25374 | HIGH | 7.5 | 3.1% | Apr 9, 2021 | An improper authorization vulnerability in Samsung Members "samsungrewards" scheme for deeplink in versions 2.4.83.9 in ... |
| CVE-2021-25373 | HIGH | 7.8 | 0.2% | Apr 9, 2021 | Using unsafe PendingIntent in Customization Service prior to version 2.2.02.1 in Android O(8.x), 2.4.03.0 in Android P(9... |
| CVE-2021-25365 | HIGH | 7.8 | 0.1% | Apr 9, 2021 | An improper exception control in softsimd prior to SMR APR-2021 Release 1 allows unprivileged applications to access the... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now